Monday, June 6, 2011

Flash 10.3 presents a great security hole in Android


Not a week goes by without the need to launch an Adobe security advisory related to Flash. This plugin, which extends the power of publishing and interactive audiovisual content on the network, is also responsible for the most embarrassing security flaws that could be imagined. In the most recent alert, smartphones running Android are in danger.


According to Adobe, Adobe Flash Player 10.3.185.22 or earlier for Google Android can compromise the system. The same goes for Flash Player 10.3.181.16 or earlier operating systems (Windows, Mac OS, Linux and Solaris).

The vulnerability, rated "important" (one level before the worst of all, the "critical"), that cybercriminals would obtain access to the functionality of the device. Through malicious websites, the crack would get control of your smartphone or computer. Among the activities authorized by the gap is erroneously sending messages via e-mail account user.

The XSS script is already being used by criminals who send fake e-mails with links to pages that exploit the loophole. From there, part of the computer functions are available to the attacker without the user knowing about it.

To avoid further problems, Adobe recommends that owners of Android upgrade their Flash on Android Market. Computer users must access a Flash page and download the latest version available. Thus it avoids future problems.